Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 11:58:51.394 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6452 1 2025-10-07 11:59:05.281 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 11:59:05.281 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 11:59:05.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 11:59:05.281 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 11:59:05.365 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 11:59:51.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-10-07 11:55:40.635 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:00:52.188 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35924 10 6452 1 2025-10-07 11:56:40.638 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:01:52.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34058 10 6452 1 2025-10-07 12:02:52.958 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58896 10 6452 1 2025-10-07 12:03:53.364 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6452 1 2025-10-07 12:04:05.628 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:04:05.533 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:04:05.588 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:04:05.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:04:05.544 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:04:53.759 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-10-07 12:05:54.136 00:00:14.148 TCP 1.101.0.1:3000 -> 23.104.0.1:35554 10 6452 1 2025-10-07 12:06:58.325 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56866 10 6452 1 2025-10-07 12:02:40.638 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:07:58.726 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47122 10 6452 1 2025-10-07 12:03:40.639 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:09:05.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:09:05.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:09:05.227 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:08:59.105 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43186 10 6452 1 2025-10-07 12:09:05.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:09:05.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:09:59.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-10-07 12:10:59.921 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-10-07 12:12:00.293 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-10-07 12:13:00.700 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54910 10 6452 1 2025-10-07 12:14:05.528 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:14:05.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:14:05.617 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:14:05.554 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:14:05.446 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:14:01.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6452 1 2025-10-07 12:09:40.637 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:15:01.508 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6452 1 2025-10-07 12:10:40.639 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:16:01.910 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42524 10 6452 1 2025-10-07 12:17:02.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49824 10 6452 1 2025-10-07 12:18:02.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47002 10 6452 1 2025-10-07 12:19:05.620 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:19:05.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:19:05.457 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:19:05.629 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:19:05.713 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:19:03.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58378 10 6452 1 2025-10-07 12:20:03.509 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6452 1 2025-10-07 12:21:03.917 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 10 6452 1 2025-10-07 12:16:40.663 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:22:04.277 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55816 10 6452 1 2025-10-07 12:17:40.667 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:23:04.683 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35224 10 6452 1 2025-10-07 12:24:05.850 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:24:05.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:24:05.651 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:24:05.607 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:24:05.767 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:24:05.106 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33180 11 6504 1 2025-10-07 12:25:05.531 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60174 10 6452 1 2025-10-07 12:26:05.909 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-10-07 12:27:06.329 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45098 10 6452 1 2025-10-07 12:28:06.735 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-10-07 12:23:40.663 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:29:05.805 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:29:05.993 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:29:05.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:29:06.148 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:29:06.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:29:07.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34410 10 6452 1 2025-10-07 12:24:40.666 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:30:07.561 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-10-07 12:31:07.973 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58452 10 6452 1 2025-10-07 12:32:08.388 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-07 12:33:08.766 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58352 10 6452 1 2025-10-07 12:34:05.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:34:06.061 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:34:05.892 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:34:06.063 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:34:06.145 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:34:09.175 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47890 10 6452 1 2025-10-07 12:35:09.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47668 10 6452 1 2025-10-07 12:30:40.666 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:36:09.996 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-10-07 12:31:40.672 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:37:10.403 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-10-07 12:38:10.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56034 10 6452 1 2025-10-07 12:39:06.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:39:05.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:39:05.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:39:05.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:39:06.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:39:11.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44406 10 6452 1 2025-10-07 12:40:11.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-10-07 12:41:11.988 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-10-07 12:42:12.354 00:00:12.719 TCP 1.101.0.1:3000 -> 23.104.0.1:50694 10 6452 1 2025-10-07 12:37:40.670 00:06:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:43:15.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-10-07 12:38:40.672 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:44:05.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:44:05.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:44:05.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:44:06.155 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:44:06.239 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:44:15.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6452 1 2025-10-07 12:45:15.921 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46164 10 6452 1 2025-10-07 12:46:16.292 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49644 10 6452 1 2025-10-07 12:47:16.695 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42130 10 6452 1 2025-10-07 12:48:17.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-10-07 12:49:06.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:49:06.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:49:06.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:49:06.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:49:06.441 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:49:17.518 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-10-07 12:44:40.670 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:50:17.917 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51932 12 6556 1 2025-10-07 12:45:40.673 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:51:18.330 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-10-07 12:52:18.736 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-10-07 12:53:19.141 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33726 10 6452 1 2025-10-07 12:54:06.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 12:54:06.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 12:54:06.529 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 12:54:06.451 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:54:06.564 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 12:54:19.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50690 10 6452 1 2025-10-07 12:55:19.908 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-10-07 12:56:20.339 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-10-07 12:51:40.680 00:06:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 12:57:20.744 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-10-07 12:52:40.678 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 12:58:21.150 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42938 10 6452 1 Summary: total flows: 138, total bytes: 417894, total packets: 1035, avg bps: 884, avg pps: 0, avg bpp: 403 Time window: 2025-10-07 11:55:40 - 2025-10-07 12:58:40 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0033s User: 0.0011s Wall: 0.0018s flows/second: 75034.2 Runtime: 0.0019s